Compare commits
7 Commits
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
a99189b31a | ||
|
|
38a7660d41 | ||
|
|
7d604189af | ||
|
|
4b574d4486 | ||
|
|
a094b70b5b | ||
|
|
3eb40bc02f | ||
|
|
81959425a1 |
4
go.mod
4
go.mod
@@ -3,11 +3,12 @@ module gitea.tecamino.com/paadi/access-handler
|
|||||||
go 1.24.5
|
go 1.24.5
|
||||||
|
|
||||||
require (
|
require (
|
||||||
gitea.tecamino.com/paadi/dbHandler v1.1.10
|
gitea.tecamino.com/paadi/dbHandler v1.1.12
|
||||||
gitea.tecamino.com/paadi/tecamino-logger v0.2.1
|
gitea.tecamino.com/paadi/tecamino-logger v0.2.1
|
||||||
github.com/gin-gonic/gin v1.11.0
|
github.com/gin-gonic/gin v1.11.0
|
||||||
github.com/go-playground/assert/v2 v2.2.0
|
github.com/go-playground/assert/v2 v2.2.0
|
||||||
github.com/golang-jwt/jwt/v5 v5.3.0
|
github.com/golang-jwt/jwt/v5 v5.3.0
|
||||||
|
github.com/google/uuid v1.3.0
|
||||||
golang.org/x/crypto v0.43.0
|
golang.org/x/crypto v0.43.0
|
||||||
)
|
)
|
||||||
|
|
||||||
@@ -25,7 +26,6 @@ require (
|
|||||||
github.com/go-playground/validator/v10 v10.27.0 // indirect
|
github.com/go-playground/validator/v10 v10.27.0 // indirect
|
||||||
github.com/goccy/go-json v0.10.2 // indirect
|
github.com/goccy/go-json v0.10.2 // indirect
|
||||||
github.com/goccy/go-yaml v1.18.0 // indirect
|
github.com/goccy/go-yaml v1.18.0 // indirect
|
||||||
github.com/google/uuid v1.3.0 // indirect
|
|
||||||
github.com/jinzhu/inflection v1.0.0 // indirect
|
github.com/jinzhu/inflection v1.0.0 // indirect
|
||||||
github.com/jinzhu/now v1.1.5 // indirect
|
github.com/jinzhu/now v1.1.5 // indirect
|
||||||
github.com/json-iterator/go v1.1.12 // indirect
|
github.com/json-iterator/go v1.1.12 // indirect
|
||||||
|
|||||||
4
go.sum
4
go.sum
@@ -1,5 +1,5 @@
|
|||||||
gitea.tecamino.com/paadi/dbHandler v1.1.10 h1:zZQbDTJ0bu6CIW90Zms8yYIzTLHtWPNhVKRxLUXEDuE=
|
gitea.tecamino.com/paadi/dbHandler v1.1.12 h1:F1ARSTUm0MZmF84FfD/g5RQNMYyDYXHYrB3cXPSi4qw=
|
||||||
gitea.tecamino.com/paadi/dbHandler v1.1.10/go.mod h1:y/xn/POJg1DO++67uKvnO23lJQgh+XFQq7HZCS9Getw=
|
gitea.tecamino.com/paadi/dbHandler v1.1.12/go.mod h1:y/xn/POJg1DO++67uKvnO23lJQgh+XFQq7HZCS9Getw=
|
||||||
gitea.tecamino.com/paadi/tecamino-logger v0.2.1 h1:sQTBKYPdzn9mmWX2JXZBtGBvNQH7cuXIwsl4TD0aMgE=
|
gitea.tecamino.com/paadi/tecamino-logger v0.2.1 h1:sQTBKYPdzn9mmWX2JXZBtGBvNQH7cuXIwsl4TD0aMgE=
|
||||||
gitea.tecamino.com/paadi/tecamino-logger v0.2.1/go.mod h1:FkzRTldUBBOd/iy2upycArDftSZ5trbsX5Ira5OzJgM=
|
gitea.tecamino.com/paadi/tecamino-logger v0.2.1/go.mod h1:FkzRTldUBBOd/iy2upycArDftSZ5trbsX5Ira5OzJgM=
|
||||||
github.com/bytedance/sonic v1.14.0 h1:/OfKt8HFw0kh2rj8N0F6C/qPGRESq0BbaNZgcNXXzQQ=
|
github.com/bytedance/sonic v1.14.0 h1:/OfKt8HFw0kh2rj8N0F6C/qPGRESq0BbaNZgcNXXzQQ=
|
||||||
|
|||||||
@@ -215,7 +215,13 @@ func (aH *AccessHandler) Me(c *gin.Context) {
|
|||||||
return
|
return
|
||||||
}
|
}
|
||||||
|
|
||||||
claims := token.Claims.(jwt.MapClaims)
|
claims, ok := token.Claims.(jwt.MapClaims)
|
||||||
|
if !ok {
|
||||||
|
aH.logger.Error("Me", "error: token.Claims.(jwt.MapClaims)")
|
||||||
|
c.JSON(http.StatusInternalServerError, nil)
|
||||||
|
return
|
||||||
|
}
|
||||||
|
|
||||||
c.JSON(http.StatusOK, gin.H{
|
c.JSON(http.StatusOK, gin.H{
|
||||||
"id": claims["id"],
|
"id": claims["id"],
|
||||||
"user": claims["username"],
|
"user": claims["username"],
|
||||||
|
|||||||
@@ -45,6 +45,7 @@ func (aH *AccessHandler) AddDefaultUser() (err error) {
|
|||||||
if err := aH.dbHandler.GetByKey(role, "role", "admin", false); err != nil {
|
if err := aH.dbHandler.GetByKey(role, "role", "admin", false); err != nil {
|
||||||
return err
|
return err
|
||||||
}
|
}
|
||||||
|
|
||||||
return aH.dbHandler.AddRelation(user, role, "Role")
|
return aH.dbHandler.AddRelation(user, role, "Role")
|
||||||
}
|
}
|
||||||
|
|
||||||
@@ -112,6 +113,10 @@ func (aH *AccessHandler) AddUser(c *gin.Context) {
|
|||||||
return
|
return
|
||||||
}
|
}
|
||||||
|
|
||||||
|
if len(user.Workspaces) > 0 {
|
||||||
|
aH.dbHandler.AddRelation(&user, user.Workspaces, "Workspaces")
|
||||||
|
}
|
||||||
|
|
||||||
c.JSON(http.StatusOK, gin.H{
|
c.JSON(http.StatusOK, gin.H{
|
||||||
"message": fmt.Sprintf("user '%s' successfully added", user.Name),
|
"message": fmt.Sprintf("user '%s' successfully added", user.Name),
|
||||||
})
|
})
|
||||||
@@ -128,7 +133,7 @@ func (aH *AccessHandler) ChangePassword(c *gin.Context) {
|
|||||||
|
|
||||||
// get user to check ChangePassword
|
// get user to check ChangePassword
|
||||||
var dbRecord models.User
|
var dbRecord models.User
|
||||||
err = aH.dbHandler.GetById(&dbRecord, user.Id, "Role")
|
err = aH.dbHandler.GetById(&dbRecord, user.Id, "Role", "Workspaces")
|
||||||
if err != nil {
|
if err != nil {
|
||||||
aH.logger.Error("ChangePassword", err)
|
aH.logger.Error("ChangePassword", err)
|
||||||
c.JSON(http.StatusInternalServerError, nil)
|
c.JSON(http.StatusInternalServerError, nil)
|
||||||
@@ -154,7 +159,7 @@ func (aH *AccessHandler) ChangePassword(c *gin.Context) {
|
|||||||
aH.logger.Debug("ChangePassword", "change user "+user.Name+" password")
|
aH.logger.Debug("ChangePassword", "change user "+user.Name+" password")
|
||||||
|
|
||||||
// Update user
|
// Update user
|
||||||
aH.dbHandler.UpdateValuesById(&user, user.Id, "Role")
|
aH.dbHandler.UpdateValuesById(&user, user.Id, "Role", "Workspaces")
|
||||||
|
|
||||||
c.JSON(http.StatusOK, gin.H{
|
c.JSON(http.StatusOK, gin.H{
|
||||||
"message": fmt.Sprintf("password of user '%s' changed", user.Name),
|
"message": fmt.Sprintf("password of user '%s' changed", user.Name),
|
||||||
@@ -178,12 +183,18 @@ func (aH *AccessHandler) GetUser(c *gin.Context) {
|
|||||||
}
|
}
|
||||||
|
|
||||||
var users []models.User
|
var users []models.User
|
||||||
err = aH.dbHandler.GetById(&users, uint(i), "Role")
|
err = aH.dbHandler.GetById(&users, uint(i), "Role", "Workspaces")
|
||||||
if err != nil {
|
if err != nil {
|
||||||
aH.logger.Error("GetUser", err)
|
aH.logger.Error("GetUser", err)
|
||||||
c.JSON(http.StatusInternalServerError, nil)
|
c.JSON(http.StatusInternalServerError, nil)
|
||||||
return
|
return
|
||||||
}
|
}
|
||||||
|
|
||||||
|
//remove password
|
||||||
|
for i := range users {
|
||||||
|
users[i].Password = ""
|
||||||
|
}
|
||||||
|
|
||||||
c.JSON(http.StatusOK, users)
|
c.JSON(http.StatusOK, users)
|
||||||
}
|
}
|
||||||
|
|
||||||
@@ -194,12 +205,29 @@ func (aH *AccessHandler) UpdateUser(c *gin.Context) {
|
|||||||
c.JSON(http.StatusInternalServerError, nil)
|
c.JSON(http.StatusInternalServerError, nil)
|
||||||
return
|
return
|
||||||
}
|
}
|
||||||
err := aH.dbHandler.UpdateValuesById(&user, user.Id, "Role")
|
|
||||||
|
var currentUser models.User
|
||||||
|
err := aH.dbHandler.GetById(¤tUser, user.Id, "Role", "Workspaces")
|
||||||
if err != nil {
|
if err != nil {
|
||||||
aH.logger.Error("UpdateUser", err)
|
aH.logger.Error("UpdateUser", err)
|
||||||
c.JSON(http.StatusInternalServerError, nil)
|
c.JSON(http.StatusInternalServerError, nil)
|
||||||
return
|
return
|
||||||
}
|
}
|
||||||
|
|
||||||
|
err = aH.dbHandler.ReplaceRelation(&user, "Workspaces", user.Workspaces)
|
||||||
|
if err != nil {
|
||||||
|
aH.logger.Error("UpdateUser", err)
|
||||||
|
c.JSON(http.StatusInternalServerError, nil)
|
||||||
|
return
|
||||||
|
}
|
||||||
|
|
||||||
|
err = aH.dbHandler.UpdateValuesById(&user, user.Id, "Role", "Workspaces")
|
||||||
|
if err != nil {
|
||||||
|
aH.logger.Error("UpdateUser", err)
|
||||||
|
c.JSON(http.StatusInternalServerError, nil)
|
||||||
|
return
|
||||||
|
}
|
||||||
|
|
||||||
c.JSON(http.StatusOK, models.NewJsonMessageResponse("successfully updated user '"+user.Email+"'"))
|
c.JSON(http.StatusOK, models.NewJsonMessageResponse("successfully updated user '"+user.Email+"'"))
|
||||||
}
|
}
|
||||||
|
|
||||||
|
|||||||
@@ -3,10 +3,13 @@ package handlers
|
|||||||
import (
|
import (
|
||||||
"fmt"
|
"fmt"
|
||||||
"net/http"
|
"net/http"
|
||||||
|
"os"
|
||||||
|
"slices"
|
||||||
"strconv"
|
"strconv"
|
||||||
|
|
||||||
"gitea.tecamino.com/paadi/access-handler/models"
|
"gitea.tecamino.com/paadi/access-handler/models"
|
||||||
"github.com/gin-gonic/gin"
|
"github.com/gin-gonic/gin"
|
||||||
|
"github.com/google/uuid"
|
||||||
)
|
)
|
||||||
|
|
||||||
func (aH *AccessHandler) AddWorkspaceTable() error {
|
func (aH *AccessHandler) AddWorkspaceTable() error {
|
||||||
@@ -23,16 +26,32 @@ func (aH *AccessHandler) AddWorkspace(c *gin.Context) {
|
|||||||
}
|
}
|
||||||
|
|
||||||
// Check if a workspace with this name already exists
|
// Check if a workspace with this name already exists
|
||||||
if aH.dbHandler.Exists(&models.Workspace{}, "workspace", workspace.Name, false) {
|
if aH.dbHandler.Exists(&models.Workspace{}, "name", workspace.Name, false) {
|
||||||
aH.logger.Error("AddWorkspace", fmt.Sprintf("workspace with name %s already exists", workspace.Name))
|
aH.logger.Error("AddWorkspace", fmt.Sprintf("workspace with name %s already exists", workspace.Name))
|
||||||
c.JSON(http.StatusBadRequest, models.NewJsonMessageResponse(fmt.Sprintf("workspace with name %s already exists", workspace.Name)))
|
c.JSON(http.StatusBadRequest, models.NewJsonMessageResponse(fmt.Sprintf("workspace with name %s already exists", workspace.Name)))
|
||||||
return
|
return
|
||||||
}
|
}
|
||||||
|
|
||||||
|
uid, err := uuid.NewUUID()
|
||||||
|
if err != nil {
|
||||||
|
aH.logger.Error("AddWorkspace", err)
|
||||||
|
c.JSON(http.StatusBadRequest, models.NewJsonErrorResponse(err))
|
||||||
|
return
|
||||||
|
}
|
||||||
|
|
||||||
|
// create new folder
|
||||||
|
err = os.MkdirAll(uid.String(), 0644)
|
||||||
|
if err != nil {
|
||||||
|
aH.logger.Error("AddWorkspace", err)
|
||||||
|
c.JSON(http.StatusBadRequest, models.NewJsonErrorResponse(err))
|
||||||
|
return
|
||||||
|
}
|
||||||
|
|
||||||
// Insert new workspace with provided permissions
|
// Insert new workspace with provided permissions
|
||||||
aH.dbHandler.AddNewColum(&models.Workspace{
|
aH.dbHandler.AddNewColum(&models.Workspace{
|
||||||
Name: workspace.Name,
|
Name: workspace.Name,
|
||||||
Description: workspace.Description,
|
Description: workspace.Description,
|
||||||
|
Uuid: uid,
|
||||||
})
|
})
|
||||||
|
|
||||||
c.JSON(http.StatusOK, gin.H{
|
c.JSON(http.StatusOK, gin.H{
|
||||||
@@ -100,15 +119,9 @@ func (aH *AccessHandler) UpdateWorkspace(c *gin.Context) {
|
|||||||
}
|
}
|
||||||
|
|
||||||
func (aH *AccessHandler) DeleteWorkspace(c *gin.Context) {
|
func (aH *AccessHandler) DeleteWorkspace(c *gin.Context) {
|
||||||
queryWorkspace := c.Query("workspace")
|
|
||||||
if queryWorkspace == "" || queryWorkspace == "null" || queryWorkspace == "undefined" {
|
|
||||||
aH.logger.Error("DeleteWorkspace", "id query missing or wrong value: "+queryWorkspace)
|
|
||||||
c.JSON(http.StatusInternalServerError, nil)
|
|
||||||
return
|
|
||||||
}
|
|
||||||
|
|
||||||
var request struct {
|
var request struct {
|
||||||
Workspaces []string `json:"workspaces"`
|
Workspaces []models.Workspace `json:"workspaces"`
|
||||||
}
|
}
|
||||||
|
|
||||||
err := c.BindJSON(&request)
|
err := c.BindJSON(&request)
|
||||||
@@ -124,29 +137,38 @@ func (aH *AccessHandler) DeleteWorkspace(c *gin.Context) {
|
|||||||
return
|
return
|
||||||
}
|
}
|
||||||
|
|
||||||
var ownWorkspace string
|
|
||||||
|
|
||||||
for _, workspace := range request.Workspaces {
|
for _, workspace := range request.Workspaces {
|
||||||
if queryWorkspace == workspace {
|
err = aH.dbHandler.DeleteByKey(&models.Workspace{}, "id", workspace.Id, false)
|
||||||
ownWorkspace = workspace
|
|
||||||
continue
|
|
||||||
}
|
|
||||||
err = aH.dbHandler.DeleteByKey(&models.Workspace{}, "workspace", workspace, false)
|
|
||||||
if err != nil {
|
if err != nil {
|
||||||
aH.logger.Error("DeleteWorkspace", err)
|
aH.logger.Error("DeleteWorkspace", err)
|
||||||
c.JSON(http.StatusInternalServerError, nil)
|
c.JSON(http.StatusInternalServerError, nil)
|
||||||
return
|
return
|
||||||
}
|
}
|
||||||
|
|
||||||
|
var users []models.User
|
||||||
|
if err := aH.dbHandler.GetById(&users, 0); err != nil {
|
||||||
|
aH.logger.Error("DeleteWorkspace", err)
|
||||||
|
c.JSON(http.StatusInternalServerError, nil)
|
||||||
|
return
|
||||||
|
}
|
||||||
|
for _, u := range users {
|
||||||
|
if u.Settings.Workspace == workspace.Name {
|
||||||
|
u.Settings.Workspace = ""
|
||||||
}
|
}
|
||||||
|
|
||||||
if ownWorkspace != "" {
|
u.Workspaces = slices.DeleteFunc(u.Workspaces, func(w *models.Workspace) bool {
|
||||||
aH.logger.Error("DeleteWorkspace", "can not delete logged in workspace id: "+ownWorkspace)
|
return w != nil && w.Name == workspace.Name
|
||||||
c.JSON(http.StatusBadRequest, gin.H{
|
|
||||||
"message": "can not delete logged in workspace id: " + ownWorkspace,
|
|
||||||
"workspace": ownWorkspace,
|
|
||||||
})
|
})
|
||||||
|
}
|
||||||
|
|
||||||
|
// crearemove folder
|
||||||
|
err = os.RemoveAll(workspace.Uuid.String())
|
||||||
|
if err != nil {
|
||||||
|
aH.logger.Error("DeleteWorkspace", err)
|
||||||
|
c.JSON(http.StatusBadRequest, models.NewJsonErrorResponse(err))
|
||||||
return
|
return
|
||||||
}
|
}
|
||||||
|
}
|
||||||
|
|
||||||
c.JSON(http.StatusOK, gin.H{
|
c.JSON(http.StatusOK, gin.H{
|
||||||
"message": "workspace(s) deleted",
|
"message": "workspace(s) deleted",
|
||||||
|
|||||||
@@ -16,7 +16,6 @@ type Settings struct {
|
|||||||
DatabaseName string `json:"databaseName,omitempty"`
|
DatabaseName string `json:"databaseName,omitempty"`
|
||||||
DatabaseToken string `json:"databaseToken,omitempty"`
|
DatabaseToken string `json:"databaseToken,omitempty"`
|
||||||
Workspace string `json:"workspace,omitempty"`
|
Workspace string `json:"workspace,omitempty"`
|
||||||
Workspaces []string `json:"workspaces,omitempty"`
|
|
||||||
}
|
}
|
||||||
|
|
||||||
func (s *Settings) DefaultQuasarSettings() {
|
func (s *Settings) DefaultQuasarSettings() {
|
||||||
|
|||||||
@@ -10,10 +10,11 @@ type User struct {
|
|||||||
Email string `gorm:"column:email" json:"email"`
|
Email string `gorm:"column:email" json:"email"`
|
||||||
RoleID *uint `gorm:"column:roleId" json:"roleId,omitempty"`
|
RoleID *uint `gorm:"column:roleId" json:"roleId,omitempty"`
|
||||||
Role *Role `gorm:"foreignKey:RoleID" json:"role,omitempty"`
|
Role *Role `gorm:"foreignKey:RoleID" json:"role,omitempty"`
|
||||||
Password string `gorm:"column:password" json:"password"`
|
Password string `gorm:"column:password" json:"password,omitempty"`
|
||||||
NewPassword string `gorm:"-" json:"newPassword,omitempty"`
|
NewPassword string `gorm:"-" json:"newPassword,omitempty"`
|
||||||
Expiration string `gorm:"column:expiration" json:"expiration,omitempty"`
|
Expiration string `gorm:"column:expiration" json:"expiration,omitempty"`
|
||||||
Settings Settings `gorm:"type:json" json:"settings"`
|
Settings Settings `gorm:"type:json" json:"settings"`
|
||||||
|
Workspaces []*Workspace `gorm:"many2many:users_workspaces;" json:"workspaces"`
|
||||||
}
|
}
|
||||||
|
|
||||||
func (u *User) IsValid() bool {
|
func (u *User) IsValid() bool {
|
||||||
|
|||||||
@@ -1,7 +1,11 @@
|
|||||||
package models
|
package models
|
||||||
|
|
||||||
|
import "github.com/google/uuid"
|
||||||
|
|
||||||
type Workspace struct {
|
type Workspace struct {
|
||||||
Id uint `gorm:"primaryKey" json:"id"`
|
Id uint `gorm:"primaryKey" json:"id"`
|
||||||
Name string `gorm:"column:name" json:"name"`
|
Name string `gorm:"column:name" json:"name"`
|
||||||
Description string `gorm:"type:json" json:"description"`
|
Description string `gorm:"type:json" json:"description"`
|
||||||
|
Uuid uuid.UUID `gorm:"type:text" json:"uuid"`
|
||||||
|
Users []*User `gorm:"many2many:users_workspaces;" `
|
||||||
}
|
}
|
||||||
|
|||||||
Reference in New Issue
Block a user